Input validation vulnerability in VikBooking Hotel Booking Engine & PMS 1.5.12

The VikBooking Hotel Booking Engine & PMS plugin for WordPress has a security vulnerability in versions up to and including 1.5.12. This vulnerability allows unauthenticated attackers to make requests on behalf of an administrator if they can trick the administrator into clicking on a link. This is because there is either no validation or incorrect validation on the widgets_watch_data function.

Detected in:

VikBooking Hotel Booking Engine & PMS fixed vulnerable versions: >= * <= 1.5.12

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.